๐ซ๐ท
mail.avx.gr
2026-08-23 00:08:54
(1 month ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.106.12.142 - - [18/Aug/2026:04:07:58 +0300] "G ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.106.12.142 - - [18/Aug/2026:04:07:58 +0300] "GET /.git/config HTTP/1.1" 301 162 "-" "-"
show less
Web App Attack
๐ฌ๐ท
mail.avx.gr
2026-08-21 17:33:54
(1 month ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.106.12.142 - - [18/Aug/2026:04:07:58 +0300] "G ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.106.12.142 - - [18/Aug/2026:04:07:58 +0300] "GET /.git/config HTTP/1.1" 301 162 "-" "-"
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-19 21:59:14
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-18.
show less
Web App Attack
SSH
Hacking
๐ฏ๐ต
beon
2026-08-18 03:05:23
(1 month ago)
[DateTime=>2026-08-18T03:05:23Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hi ...
show more
[DateTime=>2026-08-18T03:05:23Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hit=>once]
show less
Bad Web Bot
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-08-18 03:05:11
(1 month ago)
Abuse Detected (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:04:33
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:04:26.694015 2026] [security2:error] [pid 8700:tid 8700] [client 34.106.12.142:29474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "forsythfixit.com"] [uri "/.git/config"] [unique_id "aoPLutniEkdZrNI7MGoA5wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-08-18 02:57:33
(1 month ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
piticu iuli
2026-08-18 02:57:27
(1 month ago)
(mod_security) mod_security triggered on hostname [redacted] 34.106.12.142 (US/United States/142.12. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.106.12.142 (US/United States/142.12.106.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฒ๐พ
Rizzy
2026-08-18 02:56:45
(1 month ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:49:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:48:54.874033 2026] [security2:error] [pid 4351:tid 4351] [client 34.106.12.142:43344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "markgebhard.net"] [uri "/.git/config"] [unique_id "aoPIFmKtjIeTY0LLUmj8QQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-18 02:39:34
(1 month ago)
Try to access /.git/config
Web App Attack
๐ท๐ด
iulianh
2026-08-18 02:31:38
(1 month ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-18 02:24:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:24:43.224980 2026] [security2:error] [pid 24677:tid 24727] [client 34.106.12.142:14314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "providencetheological.com"] [uri "/.git/config"] [unique_id "aoPCa7pIxB6z13bzzI3F_gAAAQU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-08-18 02:23:18
(1 month ago)
Blocked by ConnMonitor
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:55:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.12.142 (142.12.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:55:00.562130 2026] [security2:error] [pid 31509:tid 31509] [client 34.106.12.142:39674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "james.ahlstrom.name"] [uri "/.git/config"] [unique_id "aoO7dC538ViY71RmQcmMnAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack